Stay Informed

Cybersecurity News

Home / News

Clear

Quick searches: Linux Windows Microsoft 365 AWS OVH VMware WordPress Fortinet Citrix VPN

What it means for your servers

The security stories that matter, explained by our team — with the concrete steps to take.

Latest headlines from security outlets

Collected every two hours from specialised publications — each link leads to the original article.

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Fine-Tuning Security with Attack Vector Controls in Linux Kernel 6.17-rc2

Managing CPU security mitigations has always been one of those balancing acts that systems administrators live and breathe but rarely get applause for. After a…

Linux

The Hacker News
The Hacker News Vulnerabilities

Malicious PyPI and npm Packages Discovered Exploiting Dependencies in Supply Chain Attacks

Cybersecurity researchers have discovered a malicious package in the Python Package Index (PyPI) repository that introduces malicious behavior through a depend…

The Hacker News
The Hacker News Vulnerabilities

Russian Group EncryptHub Exploits MSC EvilTwin Vulnerability to Deploy Fickle Stealer Malware

The threat actor known as EncryptHub is continuing to exploit a now-patched security flaw impacting Microsoft Windows to deliver malicious payloads.Trustwave S…

Windows

The Hacker News
The Hacker News Vulnerabilities

New HTTP/2 'MadeYouReset' Vulnerability Enables Large-Scale DoS Attacks

Multiple HTTP/2 implementations have been found susceptible to a new attack technique called MadeYouReset that could be explored to conduct powerful denial-of-…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

What Is a Use-After-Free (UAF) Vulnerability?

Ever wonder how a seemingly minor bug in memory management can crack open a door for attackers to slip through? Meet the use-after-free (UAF) vulnerability''an…

Linux

The Hacker News
The Hacker News Vulnerabilities

New Android Malware Wave Hits Banking via NFC Relay Fraud, Call Hijacking, and Root Exploits

Cybersecurity researchers have disclosed a new Android trojan called PhantomCard that abuses near-field communication (NFC) to conduct relay attacks for facili…

Android

The Hacker News
The Hacker News Vulnerabilities

CISA Adds Two N-able N-central Flaws to Known Exploited Vulnerabilities Catalog

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added two security flaws impacting N-able N-central to its Known Exploited Vulner…

The Hacker News
The Hacker News Vulnerabilities

Zoom and Xerox Release Critical Security Updates Fixing Privilege Escalation and RCE Flaws

Zoom and Xerox have addressed critical security flaws in Zoom Clients for Windows and FreeFlow Core that could allow privilege escalation and remote code execu…

Windows

The Hacker News
The Hacker News Vulnerabilities

Fortinet Warns About FortiSIEM Vulnerability (CVE-2025-25256) With In-the-Wild Exploit Code

Fortinet is alerting customers of a critical security flaw in FortiSIEM for which it said there exists an exploit in the wild.The vulnerability, tracked as CVE…

Fortinet

Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses
Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses Vulnerabilities

WinRAR Fixed A Zero-Day Flaw Exploited By RomCom

The popular file archiving tool WinRAR had a serious zero-day vulnerability threatening systems with code…WinRAR Fixed A Zero-Day Flaw Exploited By RomCom on L…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Critical Linux Kernel Bug Grants Attackers Full Kernel-Level Control from Chrome Sandbox

Let's talk about CVE-2025-38236 . If you've been following the Linux kernel's security track record, you already know how hard developers work to keep it solid…

Linux Chrome

The Hacker News
The Hacker News Breaches & leaks

⚡ Weekly Recap: BadCam Attack, WinRAR 0-Day, EDR Killer, NVIDIA Flaws, Ransomware Attacks & More

This week, cyber attackers are moving quickly, and businesses need to stay alert. They’re finding new weaknesses in popular software and coming up with clever …

The Hacker News
The Hacker News Vulnerabilities

Researchers Reveal ReVault Attack Targeting Dell ControlVault3 Firmware in 100+ Laptop Models

Cybersecurity researchers have uncovered multiple security flaws in Dell's ControlVault3 firmware and its associated Windows APIs that could have been abused b…

Windows

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

What is a CSRF Vulnerability?

CSRF, or Cross-Site Request Forgery , is one of those vulnerabilities that's deceptively simple but can wreak havoc if left unaddressed. Think about it: your u…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

What Is a SQLi Vulnerability?

SQL injection (SQLi) is one of those vulnerabilities that's deceptively simple in concept yet devastating in its impact. It's a family of security flaws tied t…

The Hacker News
The Hacker News Vulnerabilities

Microsoft Discloses Exchange Server Flaw Enabling Silent Cloud Access in Hybrid Setups

Microsoft has released an advisory for a high-severity security flaw affecting on-premise versions of Exchange Server that could allow an attacker to gain elev…

Exchange

The Hacker News
The Hacker News Vulnerabilities

SonicWall Confirms Patched Vulnerability Behind Recent VPN Attacks, Not a Zero-Day

SonicWall has revealed that the recent spike in activity targeting its Gen 7 and newer firewalls with SSL VPN enabled is related to an older, now-patched bug a…

VPN

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Critical NestJS Vulnerability Exposes Developers to RCE Risk

Imagine this: You're a developer, working on your local machine, crunching out APIs, or perhaps debugging your ambitious NestJS-powered application. Harmless, …

The Hacker News
The Hacker News Vulnerabilities

CISA Adds 3 D-Link Vulnerabilities to KEV Catalog Amid Active Exploitation Evidence

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added three old security flaws impacting D-Link Wi-Fi cameras and video recorders t…

The Hacker News
The Hacker News Vulnerabilities

ClickFix Malware Campaign Exploits CAPTCHAs to Spread Cross-Platform Infections

A combination of propagation methods, narrative sophistication, and evasion techniques enabled the social engineering tactic known as ClickFix to take off the …

The Hacker News
The Hacker News Vulnerabilities

Google’s August Patch Fixes Two Qualcomm Vulnerabilities Exploited in the Wild

Google has released security updates to address multiple security flaws in Android, including fixes for two Qualcomm bugs that were flagged as actively exploit…

Android

The Hacker News
The Hacker News Vulnerabilities

Cursor AI Code Editor Vulnerability Enables RCE via Malicious MCP File Swaps Post Approval

Cybersecurity researchers have disclosed a high-severity security flaw in the artificial intelligence (AI)-powered code editor Cursor that could result in remo…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

What Is a RCE Vulnerability?

If you're managing Linux systems, you already know how quickly things can spiral when Linux vulnerabilities are left unchecked. But there's one particularly na…

Linux

The Hacker News
The Hacker News Vulnerabilities

Misconfigurations Are Not Vulnerabilities: The Costly Confusion Behind Security Risks

In SaaS security conversations, “misconfiguration” and “vulnerability” are often used interchangeably. But they’re not the same thing. And misunderstanding tha…